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Abstract. The set equality problem is to tell whether two sets A and 
B are equal or disjoint under the promise that one of these is the case. 
This problem is related to the Graph Isomorphism problem. It was an 
open problem to find any query lower bound when sets A and B are 
given by quantum oracles. We will show that any error-bounded quan- 
tum query algorithm that solves the set equality problem must evaluate 
oracles J7( v/ r-^") times, where n = |^| = \B\. 



1 Introduction, motivation and results 

The amazing integer factoring algorithm of Shor |14| and search algorithm of 
Grover [7' show that to find quantum lower bounds is more that just a formal- 
ity. The most popular model of quantum algorithms is the query (oracle) model. 
Thus, also quantum lower bounds are proved in the query model. There are 
developed methods that offer tight or nearly tight lower bound for some prob- 
lems, however for some other problems not. Recently Aaronson ^ found a new 
method how to get tight quantum query lower bounds for some important prob- 
lems, for example, the collision problem. This was an open problem since 1997. 
Aaronson's method uses symmetrization over the input and therefore can be 
hard to apply to the problems with asymmetric input. The set equality problem 
is an example of such problem and it remaind unsolved. 

In this paper we will find a quantum lower bound for the set equality problem 
by reduction. We will reduce the collision problem to the set equality problem, 
therefore getting quantum query lower bound for the set equality problem. 

Let assure ourselves that the set equality problem is related with Graph Iso- 
morphism problem. We are given two graphs Gi , G2 and we want to establish 
whether there exists permutations pi , p2 over vertices of graphs such that per- 
mutated graphs pi(Gi),p2(G2) are equivalent (graphs Gi,G2 are isomorphs). 
Let Pi denote the set of all graphs gotten by some permutation over graph Gj's 
vertices {i G {0, 1}). It is easy to see that if graphs are isomorphs then Pi = P2, 
but if not, then Pi n P2 = 0. Therefore, if one can distinguish between those 
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cases, then he can solve the Graph Isomorphism problem. Since there are nl per- 
mutations for a graph with n vertices , the sizes of Pi , P2 can be superpolynomial 
over the number of vertices of graphs Gi, G2. 
Let [n] denote the set {l,2,...,n}. 

Definition 1 Let a : [n] '—^ [N] and & : [n] [N] be the functions. Let A he 
the set of all a's images A := a{[n]) := {a(l), a(2), a{n)} and B := b{[n]) := 
{6(1), 6(2), b(n)}. There is the promise that either A = B or An B — 0. 

Let the general set equality problem denote the problem to distinguish 
these two cases, if functions a and b are given by quantum oracles. 

By use of Ambainis' |2I method it is simple (CJ) to prove f2{^/n) lower bound 
for the general set equality problem. However, this approach works only if every 
image can have very many preimages. Graph theorists think that the Graph 
Isomorphism problem, when graphs are promised not to be equal with themselves 
by any nonidcntical permutation, still is very complex task. This limitation lead 
us to the set equality problem where a and 6 are one-to-one functions. 

Definition 2 Let one-to-one set equality problem denote the general set 
equality problem under promise that a{i) ^ a(j) and b(i) ^ b{j) for all i =/= j . 

Finding a;(l) quantum query lower bound for the set equality problem was 

posed an open problem by ShilBJ. Despite uj{1) lower bound for the one-to- 
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one set equality problem remaining unsolved task, '^( jpgi/3„ ) quantum query 
lower bound was showed |11| for a problem between these two problems when 
|a~^(a;)| ~ O(logn) and |6~^(a:)| = O(logn) for all images x S [N]. 

In this paper we will show the polynomial quantum query lower bound for 
the most challenging task: the one-to-one set equality problem. 

Theorem 3 Any error-bounded quantum query algorithm A that solves the one- 
to-one set equality problem must evaluate functions J7(^j^) times. 

The rest of the paper will be organized as follows. In the section [3 will be 
notations and previous results that we will use. In the section|3|we will preview 
the main idea of the proof of Theorem O The section 0] will start the proof, the 
section will prepare for continuing proof and the sectional will finish the proof. 

2 Preliminaries 

2.1 Quantum query algorithms 

The most popular model of the quantum computing is a query (or oracle, or 
black box) model where the input is given by the oracle. For more details, see a 
survey by Ambainis [3] or a textbook by Gruska 0. In this paper we are able 
to skip them because our proof will be based on reduction to solved problems. 

In this paper we consider only the worst case complexity for error-bounded 
quantum algorithms. Thus, without loss of generality, we can assume that any 
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quantum algorithm makes the same number of queries for any input. If we say 
that algorithm has two input functions a and 6 then for technical reasons some- 
where it can be comprehend with one input function denoted as (a, b). 

One of the most amazing quantum algorithms is Grover's search algorithm 
(IZI). It shows how a given xi E {0,1}, 2:2 G {0, 1}, a;„ e {0,1} to find the i 
such that Xi — I with 0{^/n) queries under promise that there exists at most 
one such i. 

This algorithm can be considerably generalized to so called amplitude am- 
plification 6 . Using amplitude amplification one can make good quantum algo- 
rithms for many problems till the quadratic speed-up over classical algorithms. 

By straightforward use of amplitude amplification we get quantum algorithm 
for the general set equality problem making 0{y/n) queries and quantum algo- 
rithm for the one-to-one set equality problem making ©(n^/"^) queries. Therefore 
our lower bound probably is not tight. 

2.2 Quantum query lovirer bounds 

There are two main approaches to get good quantum query lower bounds. The 
first is Ambainis' 2 quantum adversary method, other is lower bound by polyno- 
mials introduced by Beals et al. |5| and substantially generalized by Aaronson PP, 
Shi ^21 and others. Although explicitly we will use only Ambainis' method, the 
lower bound we will get by the reduction to the problem, solved by polynomials' 
method. 

The basic idea of the adversary method is, if we can construct a relation 
R C X X X , where X and Y consist of 0-instances and 1-instances and there is 
a lot of ways how to get from an instance in X to an instance in Y that is in 
the relation and back by flipping various variables, then query complexity must 
be high. 

Theorem 4 Let f{xi, Xn), be a function of n variables with values from 
some finite set and X, Y be two sets of inputs such that f{x) 7^ f{y) if x (z X 
and y G Y . Let R G X x Y be such that 

— For every x G X , there exist at least m different y (z Y such that (x, y) G R. 

— For every y Cz Y , there exist at least m' different x G X such that (x, y) G R. 

— For every x € X and i G {1, n}, there are at most I different y (z Y such 
that {x,y) G R and Xi ^ yi- 

— For every y GY and « G {1, n}, there are at most I' different x G X such 
that {x,y) G R and Xi ^yi- 



Then, any quantum algorithm computing f uses ^{y "]™ ) queries. 

Actually, original Ambainis' formulation was about {0, l}-valued variables but 
we can use any finite set as it is implied by the next, more general theorem in 
Ambainis' paper 
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2.3 The collision problem 

Finding uj{l) quantum lower bound for the collision problem was an open prob- 
lem since 1997. In 2001 Scott Aaronson ^ solved it by showing polynomial 
lower bound. Later his result was improved by Yaoyun Shi |13| . Recently, Shi's 
result was extended by Samuel Kutin jlOj and by Andris Ambainis 0| in another 
directions. 

Below is an exact formulation of the collision problem due to Shi|13|. 

Definition 5 Let n > and r > 2 be integers with r\n, and let a function f of 
domain size n be given as an oracle with the promise that it is either one-to-one 
or r-to-one. Let r-to-one collision problem denote the problem to distinguishing 
these two cases. 

Shi showed following quantum lower bound for the r-to-one collision 
problem. 

Theorem 6 llcif Any error-bounded quantum algorithm that solves r-to-one 
collision problem must evaluate the function {2{{n/r)^^^) times. 

Kutin jlU| and Ambainis 0] extended his result for functions with any range. 

2.4 Notations 

Let F* :— F*{n,N) denote the set of all partial functions from [n] to [N]. 
Then any /* £ F* can be conveniently represented as a subset of [n] x [N], i.e., 
f* = {itJ*it)):tedom{f*)}. 

For a finite set K C Z+, let SG{K) denote the group of permutations on K. 
For any integer fc > 0, SG{k) is a shorthand for SG{[k]). For each a e SG{n) 
and T e SG{N) define F^ F* ^ F* as 

r;(r) {(a(z),r(j)) : e f*},yf* G F* . 

3 The idea behind the proof 

The rest of the paper is proof of the Theorem El In this section we will discuss 
the main idea behind this proof. The key is to reduce some problem with known 
quantum query lower bound to the one-to-one set equality problem. Unfortu- 
nately, a simple reduction does not work. Therefore we must make a chain of 
reductions and in the end get the problem, which can be solved by arbitrary 
methods. 

The problem, which we will try to reduce to the one-to-one set equality prob- 
lem, is the collision problem. All steps of reduction will be probabilistic. One of 
that steps Midriianis|ll| used to prove quantum query lower bound for modified 
set equality problem. We will conclude that any quantum query algorithm that 
solves the one-to-one set equality problem either solves the collision problem or 
some other problem that will be presented later. For the collision problem we 
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have a quantum query lower bound and for this other problem we will prove it 
using Ambainis' adversary method. This implies lower bound for the one-to-one 
set equality problem. 

Unfortunately, since these reductions are probabilistic ones, but Theorem^ 
tells about ordinary functions, a lot of technical work must be done to provide the 
correctness of the last reduction. We will analyze properties of those reductions 
and show, informally, that they are very similar (in sense of query complexity). 

There will be two kinds of reduction from the collision problem to the set 
equality problem. Let / denote r-to-one function which the collision problem 
has in the input. From / we will randomly get two functions, a and b. The both 
reductions will randomly permutate range and domain of / and divide domain 
into 2 disjoint halves. The first reduction will takes those halves of domain as 
domains for functions a and b. The second reduction will take only the first half 
for both functions, just it will make additional permutation over domain for both 
functions. 

Informally, it is clear that both reductions makes "almost" equal pair of 
functions a and b whenever r is big " enough" . We will show that any quantum 
algorithm that can make distinction between them must make "quite many" 
queries. On the other hand, every algorithm for the set equality problem that 
don't make distinction between them can be used to solve the collision problem 
that is proved to be hard. 

4 Framework of the proof 

We have some n and 1 < r < n, such that 2|n and r\n. From the conditions 
of the collision problem we have function / : [n] ^ [N] with promise that / is 
either one-to-one or r-to-one. Let us choose random variables a e SG[n],ai G 
SG[ji/2],<72 G SG[n/2] and r e SG[N]. 

With complementary reduction we will denote the process deriving func- 
tions a and b such that a{i) = r^{f){i) and b{i) = r^{f){n/2 + i) for all i < n/2. 

With equivalent reduction we will denote the process deriving functions a 
and b such that a{ai{i)) = r^{f){i) and b{<72{i)) = r^{f){i) for all i < n/2. 

Lemma 7 For any quantum algorithm A that solves the set equality problem 
with T queries either there exists quantum algorithm that solves r-to-one collision 
and makes 0{T) queries or there exists quantum algorithm that makes distinction 
between complimentary and equivalent reduction and makes 0{T) queries. 

Proof. This tabular shows the acceptance probability of algorithm A running on 
a and b. 



reduction's type \ function's / type 


one-to-one 


r-to-one 


complimentary 


p\ > 4/5 


P2 


equivalent 


Pi < 1/5 


Pi 



There are two possibilities. If ^ 2/5 or ^ 3/5 then algorithm A can be 
used to solve the collision problem. But if p| < 2/5 and P2 > 3/5 then algorithm 



5 



A can be used to make distinction between complimentary and equivalent re- 
duction. □ 
In the next sections we will prove the following lemma: 

Lemma 8 Any quantum algorithm A that makes distinction between compli- 
mentary and equivalent reduction makes j^^^) queries. 

Choosing r = v?l^ log^^^ n LemmaQtogether with Lemma|Sland TheoremEl 
will finish the proof of Theorem |21 



5 The lower bound of distinction, preparation 

In this section we will start to prove Lemma |H1 Informally, both reductions, 
complementary and equivalent, make "quite similar" pairs of functions. So we 
have to define what means "similar" and to proof exactly how similar. Also, 
Theorem 0] deals with ordinary input not distributions over inputs, therefore we 
will need to formulate ordinary problem and reduce it to ours. 

In this subsection we will investigate properties of both reductions. 

We will speak only about pairs of functions (a, 6) that can be result of either 
complementary or equivalent reduction with nonzero probability p(a, 6) > 0. We 
will investigate what pairs (a, 6) can appear. 

For any function a, which is in some pairs, let INV{a) := {ai\0 < i < 
r) := {ao, ai, ar-i, ar) denote the tuple where is the number of image's 
elements x S [N], such that cardinality of the set of preimages of a; is i, formally 

r 

Qi :— #a;(|a^-'^(a;)| = i) for < i < r and qq :— - — ^^i) where - is just the 

total count of images. 

Let INV{a,b) denote {I NV (a) , I NV (b)) . INV{a,b) is quite good way to 
describe the structure of some pair of functions (a, b) because of many reasons. 
Firstly, one can see, that INV{a,b) = INV{r^^{a),r^^{b)) for any pair of 
functions (a, 6) and any ai e S'G[n/2],(T2 e SG[n/2] and r G SG[N]. 

Also, the probability for any pair (a, b) to appear after reduction p(a, b) 
depends only on INV{a,b). Moreover, if there exists pairs of functions (ai,6i) 
and (02,62) such that INV{ai,bi) — INV{a2,b2) then there exists variables 
0-1 e SG[n/2],a2 e SG[n/2] and r e SG[N] such that (a, 6) = (r^^i (a), /^^ (6)). 

Now we will show, that, for any pair (a, b), INV{a) and INVib) are closely 
related. For any INV{a) — (ao, ai, a^-i, a^) let INV{a) denote the tuple 
{ar-i\0 <i<r) := (o^-, a^-i, ai, oq). 

It is evident that for any pair of functions (a, b) that occurs after comple- 
mentary reduction holds INV{a) = INV{b) but for any pair of functions (a. b) 
that occurs after equivalent reduction holds INV{a) = INV{b). 

We will use these facts to show that complementary and equivalent reductions 
are quite similar, in other words, any functions hi and &2 such that INV{bi) = 
INV{b2) differ in many bits only with very small probability. So we will be able 
to use Ambainis' Theorem 0] about bit's block flip to show lower bound. 
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Let a be any function that stand in some pair (a, b) with INV{a) = (ao, ai, a^). 
Let DISP{INV{a)) := max (|i - r/2| : > 0). 

< i < /■ 

De finitio n 9 VFe say that a is "bad" (and denote BAD{a) ) if DISP{INV{a)) > 
IS^FhTf. 

Informally, a is bad if there exists image such that after reduction most of 
its prcimagcs arc; in domain of either o or 6. 

It is easy to see that for any pair (a, b) holds: a is bad if and only if b is bad. 

This Lemma shows, that the difference between complementary and equiva- 
lent reductions is quite small: 

Lemma 10 The sum ^ pi(i,b) is less than small constant if r ^ In j. 

{a,b),BAD(a) 

Proof. Let us see only the case when (a, b) occurs after complementary reduction. 
Let f : n ^ N he the function before reduction. Let choose some fixed image 
j of function /, thus j G f{[n]). We say that j is "bad" (denote by BAD{j)) if 
llos"""^!.?)! ^ ''/2| > 15 y^r In ^. Let pj denote the probability that j is bad. It is 
easy to see that for all j € f{[n]) pj is equal with some p. It is easy to see that 
BAD{a) <^ BAD{j) for some j G f{[n]). Therefore probability for a to be bad 
is less than n/r * p where n/r is the total count of images. Now it remains only 
to show that p <C r/n. 

There are two cases how j can be bad, the first is that is too big 

and the second is that |a~^(j)| is too small. Obviously, that both of these cases 
holds with similar probability. Let's count the probability that |a~^(j)| is too 
big. Let enumerate all preimages of j as a;i,a;2, Let x'i denote the random 

variable that is 1 if Xi become a member of domain of a and elsewhere. Let 
X' '■= X1 + X2 + ■■■ + X'r- Thus we reach out for Pr[x' > E{x') + 15^r In -], since 
E{x') = r/2. 

Let Xi denote the random variable that is 1 with probability 1/2 and with 
probability 1/2. Let X •= Xi + ••■ + Xr- It is easy to see that for all s > r/2 = 
E{x') = -^(x) holds Pr[x' > s] < Pr[x > s]. Now we can apply Chernofl['s 
inequality 

Pr[x>(l+e)i?(x)]<e-^'^('^)/3 

if < e < 1. It is easy to see that E{x) = r/2. Let e := 30-^^^. It is easy to see 

that eE{x) = 15^r In ^. It remains to evaluate the probability e~*^^^^^/^ <C r/n 
ifr»ln2i. □ 



6 Proof's completing 

In this section we will reduce the problem to distinguish between complemen- 
tary and equivalent reduction (with distribution over input) to problem of the 
ordinary input. 
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Definition 11 Let n > and r > 2 be integers such that n\2 and n\r. Let 

a : n/2 —t N and b : n/2 N be functions given by an oracle, such that the 
pair (a, b) can occur after complementary or equivalent reduction. LNV{a) is 
known and it is promised that a is not bad. Let ComesFrom problem denote 
the problem to decide whether the pair (a, b) occurred after complementary or 
equivalent reduction. 



6.1 Reduction 

Lemma 12 If there exists quantum algorithm A that makes distinction between 
complimentary and equivalent reduction with T queries then there exists quantum 
algorithm A' that solves ComesFrom problem with 0{T) queries. 

Proof. Firstly, we can ignore all pairs (a, b) that have BAD{a) because they 
appear with very small probability ( Lemma I10|l . If we want to improve the 
probability we can just repeat A several times. 

Secondly, without loss of generality, we can assume that the accepting prob- 
ability of A depends only on INV{a, b). If not, we can modify algorithm A, such 
that it choose random variables cti G SG[n/2],a2 € SG[n/2] and r g SG[N] at 
the beginning and further just deal with pair of functions {F^^ {a), F^^ (b)). 

Thirdly, since A makes distinction between complimentary and equivalent 
reduction and for any pair of functions (a, 6) depends only on INV{a,b), there 
exists some / := INV{a) such that A makes distinction between (a,6i) such 
that INV{bi) = INV{a) = / and (a, 62) such that 7W(62) = INV{a) = I for 
any function bi and 62- 

It follows, that for this particular / we can solve ComesFrom problem using 
algorithm A. 

□ 

6.2 Lower bound for the ComesFrom problem 

Lemma 13 Any quantum algorithm A that solves the ComesFrom problem 



makes Q 




queries. 



Proof. Let / = (ao, Cr) denote the known INV{a). We will use Theorem01to 
prove lower bound quite similarly to Ambainis' proof about lower bound for 
counting. Let X be the set of all (a, b) such that INV{b) = INV{a) = I and let 
Y be the set of all (a, b) such that 7NV{b) = INV{a) = /. 

Let "F := F{I) := ^ — r/2. Since a is not bad, it implies that F = 

i:ai>r/2 

0{j\/r\ogn). 2F is just the number of points that must be changed to to switch 
from INV{b) to 7NV{b). Let <P := n ^^trUa^y. - 

i:ai<r/2 

Let R be the set of all ((a, 61), (a, 62)) such that 61 differs from &2 exactly in 
2F points and INV(bi) = 7NV{b2). Then, m = m' = Cl%^^F and I ^ V = 
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C'^+V-i*^- Therefore, 

mm! _ /_C^^^+£^y _ / (n/4 + (2>?- - l)!(n/4-tf/-)! y _ ( nl^ + ^ V 

Now we can apply Theorem 0] and get that any quantum algorithm makes 

7 Conclusion 

We showed a polynomial quantum query lower bound for the set equality prob- 
lem. It was done by reduction. Arguments that allowed reduction was very spe- 
cific to the set equality problem. It would be nice to find some more general 
approach to find quantum query lower bounds for this and other similar prob- 
lems. Also, it would be fine to make smaller difference between quantum lower 
and upper bounds for the set equality problem. 
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